Fortinet NSE7_EFW-7.0 Question Answer
Which statement about NGFW policy-based application filtering is true?
After the application has been identified, the kernel uses only the Layer 4 header to match the traffic.
The IPS security profile is the only security option you can apply to the security policy with the action set to ACCEPT.
After IPS identifies the application, it adds an entry to a dynamic ISDB table.
FortiGate will drop all packets until the application can be identified.
TESTED 13 Jul 2025
Copyright © 2014-2025 ACE4Sure. All Rights Reserved